International Journal of Computer Applications |
Foundation of Computer Science (FCS), NY, USA |
Volume 183 - Number 30 |
Year of Publication: 2021 |
Authors: Randi Indraguna, Imam Riadi |
10.5120/ijca2021921691 |
Randi Indraguna, Imam Riadi . Web Server Security Analysis from DDoS Attack using Information Systems Security Assessment Framework Method. International Journal of Computer Applications. 183, 30 ( Oct 2021), 38-46. DOI=10.5120/ijca2021921691
An information system is a system that provides information for management in making decisions and also for carrying out the operations of an organization or individual, such as in the use of website-based information systems for local governments, with an information system, it is important to protect against cybercrime, especially DDoS Attacks. Reporting from the company Kaspersky DDoS Protection DDoS attacks grew on average in Q1 2020, DDoS attacks lasted 25% longer than in Q1 2019. Therefore, it is important to secure the webserver of a system, so that the system can be protected from various forms of cybercrime. especially DDoS Attacks.The stages of data collection in this study include the literature study and interviews, while the research stage includes information gathering, network mapping, vulnerability testing, and analysis of reports used on the research object of an information system web server.The results of the study proved that the Information Systems Security Assessment Framework (ISSAF) method can be used to analyze the vulnerability of a web server from an information system, in the form of some data regarding server information, network mapping, the level of vulnerability of a server in this study is level 1: low, and does not have The anti-clickjacking X-Frame-Options and The X – XSS – Protection and in the next stage, the highest attack packet data penetration test is 1220689 and the lowest attack packet data is 28240 which is normal, and then the data is analyzed.